VYPR
Medium severity5.0OSV Advisory· Published Feb 9, 2018· Updated Jun 17, 2026

CVE-2018-1000021

CVE-2018-1000021

Description

GIT version 2.15.1 and earlier contains a Input Validation Error vulnerability in Client that can result in problems including messing up terminal configuration to RCE. This attack appear to be exploitable via The user must interact with a malicious git server, (or have their traffic modified in a MITM attack).

Affected products

3
  • Git/GitOSV3 versions
    v0.99, v0.99.1, v0.99.2, …+ 2 more
    • (no CPE)range: v0.99, v0.99.1, v0.99.2, …
    • cpe:2.3:a:git-scm:git:*:*:*:*:*:*:*:*range: <=2.15.1
    • (no CPE)range: <=2.15.1

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.